ConnectWise has revealed it recently suffered a cyberattack, likely at the hands of a "sophisticated nation state actor." In a short announcement published on its website, the company said it recently ...
Security experts are sounding the alarm on two vulnerabilities in ConnectWise ScreenConnect that are under active exploitation by threat actors. ConnectWise on Monday published an advisory for two ...
‘ConnectWise recently learned of suspicious activity within our environment that we believe was tied to a sophisticated nation state actor, which affected a very small number of ScreenConnect ...
CVE-2024-1709 is an authentication bypass vulnerability; it has a Common Vulnerability Scoring System (CVSS) score of 10 (on a scale of 0-10). CVE-2024-1708 is a path traversal bug with a CVSS score ...
The ConnectWise ScreenConnect vulnerability, which earlier this year was identified as a potential way for threat actors to perform ViewState code injection attacks, is now being exploited, according ...
A suspected “sophisticated nation state actor” has compromised ScreenConnect cloud instances of a “very small number” of ConnectWise customers, the company has revealed on Wednesday. “We have not ...
ConnectWise has issued a security advisory regarding an undisclosed file-transfer vulnerability affecting both cloud-hosted ...
ConnectWise is warning ScreenConnect customers of a cryptographic signature verification vulnerability that could lead to unauthorized access and privilege escalation. The flaw affects ScreenConnect ...
UPDATE (February 22, 2024, 05:40 a.m. ET): Now designated as CVE-2024-1709 and CVE-2024-1708, the vulnerabilities are under active exploitation. Go here for up-to-date information and advice.
ConnectWise is warning customers that it is rotating the digital code signing certificates used to sign ScreenConnect, ConnectWise Automate, and ConnectWise RMM executables over security concerns.
Some results have been hidden because they may be inaccessible to you
Show inaccessible results